Bad news for Dell customes – this vendor has shipped an unsecure, self signed root CA certifcate (eDellRoot) on new Dell desktop and tablet devices. The odd thing: This certificate may be used to sign own certificates and decrypt https-data.
The first note about that incident came at reddit.com in a thread Dell ships laptops with rogue root CA, exactly like what happened with Lenovo and Superfish. Then arstechnica.com has published an article Dell does a Superfish, ships PCs with easily cloneable root certificates covering this issue.
Dell users can run a shot test on this site to check, whether the eDellRoot certificate is installed. And if this eDellRoot certificate is present, download and execute the eDellRootCertFix.exe removal tool issed by Dell.
Cookies helps to fund this blog: Cookie settings